Improper Authorization in cobbler

### Impact If PAM is correctly configured and a user account is set to expired, the expired user-account is still able to successfully log into Cobbler in all places (Web UI, CLI & XMLRPC-API). Th ...

Continue Reading
RST Threat feed. IOC: https://itfsindia.com/wp-includes/xmlrpc/dat/member/affwebservices/spid/saml2sso/old/np/mil/nfoaa_auth/login/jsp/que.php

Found **https://itfsindia[.]com/wp-includes/xmlrpc/dat/member/af...Read More ...

Continue Reading
xmlrpc-c security update

[1.51.0-5.1] - Add missing validation of encoding (CVE-2022-25235) (#2058114)Read More ...

Continue Reading
Oracle Linux 8 : xmlrpc-c (ELSA-2022-1643)

The remote Oracle Linux 8 host has packages installed that are affected by a vulnerability as referenced in the ELSA-2022-1643 advisory. - xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks ce ...

Continue Reading
RST Threat feed. IOC: https://bssc.se/xmlrpc/dat/member/affwebservices/spid/saml2sso/old/np/mil/nfoaa_auth/login/jsp/full.php

Found **https://bssc[.]se/xmlrpc/dat/member/affwebservices/spid/...Read More ...

Continue Reading
RST Threat feed. IOC: https://bssc.se/xmlrpc/dat/member/affwebservices/spid/saml2sso/old/np/mil/nfoaa_auth/login/jsp/fulls.php

Found **https://bssc[.]se/xmlrpc/dat/member/affwebservices/spid/...Read More ...

Continue Reading
RST Threat feed. IOC: https://bssc.se/xmlrpc/dat/member/affwebservices/spid/saml2sso/old/np/mil/nfoaa_auth/login/jsp/index.html

Found **https://bssc[.]se/xmlrpc/dat/member/affwebservices/spid/...Read More ...

Continue Reading
RST Threat feed. IOC: https://bssc.se/xmlrpc/dat/member/affwebservices/spid/saml2sso/old/np/mil/nfoaa_auth/login/jsp/que.php

Found **https://bssc[.]se/xmlrpc/dat/member/affwebservices/spid/...Read More ...

Continue Reading

Back to Main

Subscribe for the latest news: